Vulnerability Details CVE-2008-1472
Stack-based buffer overflow in the ListCtrl ActiveX Control (ListCtrl.ocx), as used in multiple CA products including BrightStor ARCserve Backup R11.5, Desktop Management Suite r11.1 through r11.2, and Unicenter products r11.1 through r11.2, allows remote attackers to execute arbitrary code or cause a denial of service (crash) via a long argument to the AddColumn method.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.763
EPSS Ranking 98.9%
CVSS Severity
CVSS v2 Score 9.3
Products affected by CVE-2008-1472
-
cpe:2.3:a:computer_associates:brightstor_arcserve_backup_laptops_desktops:11.5
-
cpe:2.3:a:computer_associates:desktop_management_suite:r11.1
-
cpe:2.3:a:computer_associates:desktop_management_suite:r11.2
-
cpe:2.3:a:computer_associates:unicenter_dsm_r11_list_control_atx:11.2.3.1895
-
cpe:2.3:a:unicenter:asset_management:r11.1
-
cpe:2.3:a:unicenter:asset_management:r11.2
-
cpe:2.3:a:unicenter:desktop_management_bundle:r11.1
-
cpe:2.3:a:unicenter:desktop_management_bundle:r11.2
-
cpe:2.3:a:unicenter:remote_control:r11.1
-
cpe:2.3:a:unicenter:remote_control:r11.2
-
cpe:2.3:a:unicenter:software_delivery:r11.1
-
cpe:2.3:a:unicenter:software_delivery:r11.2